China Hacks the Peace Palace: All Your EEZ’s Are Belong to Us
概要
In early July 2015, Chinese APT actors used an Adobe Flash Player exploit within a specific webpage detailing a noteworthy international legal case between the Philippines and China. This precedent setting legal case would be followed by many Southeast Asian nations, as well as others around the globe. The exploit appeared on day three of the Permanent Court of Arbitration tribunal, exposing an untold number of interested parties that visited the webpage to potential exploitation.
When considered holistically, the intelligence supports the conclusion that this exploitation campaign was purposefully carried out against the backdrop of diplomatic and legal maneuvering. Despite Beijing’s unwillingness to participate in the international arbitration and their rejection of the PCA’s jurisdiction, there appears to be a distinct effort to surreptitiously target those who are interested in this landmark international legal case via electronic means.
Created: 2026-02-23
Indicators
類似Pulses
このPulseに関連する脅威アクター (事実ベース)
Score: 5.68
Matched TTPs:
- T1131 - Authentication Package
- T1547.002 - Authentication Package
MITREへのリンク →
Score: 3.29
Matched TTPs:
- T1131 - Authentication Package
MITREへのリンク →
Score: 3.29
Matched TTPs:
- T1131 - Authentication Package
MITREへのリンク →
Score: 8.43
Matched TTPs:
- T1131 - Authentication Package
- T1059.001 - PowerShell
- T1547.002 - Authentication Package
MITREへのリンク →
Score: 15.58
Matched TTPs:
- T1131 - Authentication Package
- T1547.002 - Authentication Package
- T1565.002 - Transmitted Data Manipulation
- T1665 - Hide Infrastructure
- T1003.003 - NTDS
MITREへのリンク →
Score: 8.74
Matched TTPs:
- T1131 - Authentication Package
- T1565.002 - Transmitted Data Manipulation
- T1547.008 - LSASS Driver
MITREへのリンク →
Score: 6.88
Matched TTPs:
- T1059.001 - PowerShell
- T1003.003 - NTDS
MITREへのリンク →
Score: 5.67
Matched TTPs:
- T1059.001 - PowerShell
- T1573 - Encrypted Channel
MITREへのリンク →
Score: 5.14
Matched TTPs:
- T1059.001 - PowerShell
- T1547.002 - Authentication Package
MITREへのリンク →
Score: 5.67
Matched TTPs:
- T1059.001 - PowerShell
- T1573 - Encrypted Channel
MITREへのリンク →
Score: 8.07
Matched TTPs:
- T1059.001 - PowerShell
- T1573 - Encrypted Channel
- T1547.002 - Authentication Package
MITREへのリンク →
Score: 5.33
Matched TTPs:
- T1573 - Encrypted Channel
- T1547.002 - Authentication Package
MITREへのリンク →
Score: 5.45
Matched TTPs:
- T1573 - Encrypted Channel
- T1547.008 - LSASS Driver
MITREへのリンク →
Score: 11.89
Matched TTPs:
- T1547.002 - Authentication Package
- T1055.005 - Thread Local Storage
- T1665 - Hide Infrastructure
- T1547.008 - LSASS Driver
MITREへのリンク →
Score: 4.92
Matched TTPs:
- T1547.002 - Authentication Package
- T1547.008 - LSASS Driver
MITREへのリンク →
Score: 7.06
Matched TTPs:
- T1592.002 - Software
- T1547.008 - LSASS Driver
MITREへのリンク →
Score: 4.13
Matched TTPs:
- T1557.002 - ARP Cache Poisoning
MITREへのリンク →
Score: 11.60
Matched TTPs:
- T1557.002 - ARP Cache Poisoning
- T1565.002 - Transmitted Data Manipulation
- T1027.002 - Software Packing
MITREへのリンク →
Score: 5.45
Matched TTPs:
- T1565.002 - Transmitted Data Manipulation
- T1547.008 - LSASS Driver
MITREへのリンク →
Score: 7.06
Matched TTPs:
- T1565.002 - Transmitted Data Manipulation
- T1055.005 - Thread Local Storage
MITREへのリンク →
Score: 5.36
Matched TTPs:
- T1665 - Hide Infrastructure
- T1547.008 - LSASS Driver
MITREへのリンク →
このPulseに関連する脅威アクター (推論ベース)
Score: 0.81
Matched TTPs:
- T1547.002 - Authentication Package
- T1565.002 - Transmitted Data Manipulation
- T1003.003 - NTDS
- T1131 - Authentication Package
- T1665 - Hide Infrastructure
MITREへのリンク →
Score: 0.65
Matched TTPs:
- T1055.005 - Thread Local Storage
- T1665 - Hide Infrastructure
- T1547.008 - LSASS Driver
- T1547.002 - Authentication Package
MITREへのリンク →
Score: 0.63
Matched TTPs:
- T1027.002 - Software Packing
- T1565.002 - Transmitted Data Manipulation
- T1557.002 - ARP Cache Poisoning
MITREへのリンク →
Related CVEs
このPulseに見つかったCVEはありません。
Pulse – 脅威アクター グラフ
← Pulse一覧に戻る